-
Notifications
You must be signed in to change notification settings - Fork 3
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Security upgrade zipp from 3.15.0 to 3.19.1 #107
base: main
Are you sure you want to change the base?
Conversation
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899
Current Aviator status
This pull request is currently open (not queued). How to mergeTo merge this PR, comment
See the real-time status of this PR on the
Aviator webapp.
Use the Aviator Chrome Extension
to see the status of your PR within GitHub.
|
Unable to locate .performanceTestingBot config file |
View changes in DiffLens |
Important Review skippedIgnore keyword(s) in the title. Please check the settings in the CodeRabbit UI or the You can disable this status message by setting the Thank you for using CodeRabbit. We offer it for free to the OSS community and would appreciate your support in helping us grow. If you find it useful, would you consider giving us a shout-out on your favorite social media? TipsChatThere are 3 ways to chat with CodeRabbit:
Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. CodeRabbit Commands (invoked as PR comments)
Additionally, you can add CodeRabbit Configuration File (
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
We have skipped reviewing this pull request. Here's why:
- It seems to have been created by a bot ('[Snyk]' found in title). We assume it knows what it's doing!
- We don't review packaging changes - Let us know if you'd like us to change this.
Hi there! 👋 Thanks for opening a PR. 🎉 To get the most out of Senior Dev, please sign up in our Web App, connect your GitHub account, and add/join your organization AdamOswald. After that, you will receive code reviews beginning on your next opened PR. 🚀 |
This PR was automatically created by Snyk using the credentials of a real user.
![snyk-top-banner](https://github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)
Snyk has created this PR to fix 1 vulnerabilities in the pip dependencies of this project.
Snyk changed the following file(s):
requirements.txt
⚠️ Warning
``` virtualenv 20.26.3 requires platformdirs, which is not installed. transformers 4.30.2 has requirement tokenizers!=0.11.3,<0.14,>=0.11.1, but you have tokenizers 0.19.1. timm 0.9.12 requires torchvision, which is not installed. pipenv 2023.10.3 has requirement setuptools>=67, but you have setuptools 40.5.0. paddlenlp 2.8.1 requires colorama, which is not installed. paddlenlp 2.8.1 requires paddlefsl, which is not installed. paddlenlp 2.8.1 requires fastapi, which is not installed. paddlenlp 2.8.1 requires colorlog, which is not installed. paddlenlp 2.8.1 requires uvicorn, which is not installed. paddlenlp 2.8.1 requires Flask-Babel, which is not installed. paddlenlp 2.8.1 requires protobuf, which is not installed. paddlenlp 2.8.1 requires multiprocess, which is not installed. paddlenlp 2.8.1 requires paddle2onnx, which is not installed. paddlenlp 2.8.1 requires seqeval, which is not installed. paddlenlp 2.8.1 requires typer, which is not installed. paddlenlp 2.8.1 requires jinja2, which is not installed. paddlenlp 2.8.1 requires onnx, which is not installed. paddlenlp 2.8.1 requires sentencepiece, which is not installed. paddlenlp 2.8.1 requires dill, which is not installed. paddlenlp 2.8.1 requires visualdl, which is not installed. paddlenlp 2.8.1 requires rich, which is not installed. paddlenlp 2.8.1 requires datasets, which is not installed. paddlenlp 2.8.1 requires jieba, which is not installed. paddlenlp 2.8.1 has requirement huggingface-hub>=0.19.2, but you have huggingface-hub 0.16.4. paddlehub 2.4.0 requires colorama, which is not installed. paddlehub 2.4.0 requires flask, which is not installed. paddlehub 2.4.0 requires colorlog, which is not installed. paddlehub 2.4.0 requires visualdl, which is not installed. paddlehub 2.4.0 requires paddle2onnx, which is not installed. paddlehub 2.4.0 requires pyzmq, which is not installed. paddlehub 2.4.0 requires matplotlib, which is not installed. paddlehub 2.4.0 requires gradio, which is not installed. paddlehub 2.4.0 requires opencv-python, which is not installed. lpips 0.1.4 requires torchvision, which is not installed. lpips 0.1.4 requires scipy, which is not installed. ipython 7.34.0 requires decorator, which is not installed. ipython 7.34.0 requires pygments, which is not installed. facexlib 0.3.0 requires filterpy, which is not installed. facexlib 0.3.0 requires scipy, which is not installed. facexlib 0.3.0 requires numba, which is not installed. facexlib 0.3.0 requires torchvision, which is not installed. facexlib 0.3.0 requires opencv-python, which is not installed. clip-anytorch 2.6.0 requires torchvision, which is not installed. aistudio-sdk 0.2.5 requires bce-python-sdk, which is not installed. aistudio-sdk 0.2.5 requires click, which is not installed.